Security1 publisherNot yet confirmed elsewhere2 min readPublished
Microsoft's AI-driven FORGE lab helped find 140 Windows CVEs in five months
Microsoft's FORGE lab helped discover Windows flaws assigned 140 CVEs from May to September 2026, 52 of them fixed in the September release. Microsoft says the pace now depends on how fast its response center can validate and fix what the AI agents report.
The Watch · Security desk

What happened
- FORGE is Microsoft Security's Frontier Offensive Research & Generative Exploitation Lab, built to do AI-native research on finding and fixing zero-day flaws.
- FORGE members also filed 155 internally validated reports across 23 open-source projects, the Linux kernel among them.
- One Linux report became the first submission through Akrites, a Linux Foundation confidential-disclosure initiative, to end in a patch merged into the kernel.
- The lab runs its work through MDASH, a multi-model agentic scanning harness Microsoft introduced in May 2026 and updated in June.
- Microsoft says a larger search budget can cut useful output when duplicate or poorly supported reports take reviewer attention from stronger ones.
Compiled by The WatchSomething wrong?How this is made
Why it matters
- decision Teams sizing Windows test windows for coming releases have one high month, from one research group, to plan on.
- exposure Maintainers receiving FORGE reports now carry the validation and repair step that Microsoft names as the bottleneck in its own pipeline.
- precedent Akrites now has a worked case of an AI lab's kernel bug going from confidential report to merged fix, a route other AI research teams can use.
Microsoft's verb for the 140 is "helped discover" [2]. The post does not separate agent findings from human work, rate the flaws by severity, or say whether any were exploited before a fix shipped [2]. On the public record, this is defender-side research on Windows and on open-source code [c1, c4].
September is the month that matters for patch planning. Take the 52 from the 140 and May through August leave 88 CVEs, or 22 a month [d1, d2]. September alone is about 37 percent of the five-month total, at roughly 2.4 times the earlier monthly pace [d3, d4]. One month cannot show whether that is a ramp or a backlog of findings that cleared review in the same cycle [3].
Microsoft's own account puts the limit at the review stage. Adding auditors can raise the number of candidate bugs without raising validated findings or shipped fixes, the post says, and when reports arrive faster than the Microsoft Security Response Center can resolve them, the immediate result is a growing queue [7]. "Discovery creates security value only when validation and remediation can keep pace," Microsoft wrote [9].
Microsoft's answer is tooling between discovery and review. Project-specific provers, including proof-of-concept generators, harness builders and trigger-input finders, run inside each project's build and test environment. They find crashing inputs and confirm that execution paths are reachable [11]. Microsoft says the unit to optimize is a reproducible finding with enough evidence for the next stage to act [12]. "The scarce resource is not always model intelligence. It can be a working build and deployment, a reproducible trigger, or even an engineer's time," the post said [10].
What to watch
- Microsoft's October 2026 security release, and whether FORGE-linked fixes stay near September's 52.
- Any Microsoft breakdown of the 140 CVEs by month, severity or exploitation in the wild.
- Further FORGE submissions through Akrites reaching merged Linux kernel patches.